You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/translation_helper.rb in the internationalization component in Ruby on Rails 3.x before 3.2.16 and 4.x before 4.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted string that triggers generation of a fallback string by the i18n gem.
CVE-2013-4491 - Medium Vulnerability
path: /tmp/git/sample_app/Gemfile.lock
Dependency Hierarchy:
🔴 Vulnerability Details
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/translation_helper.rb in the internationalization component in Ruby on Rails 3.x before 3.2.16 and 4.x before 4.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted string that triggers generation of a fallback string by the i18n gem.
Publish Date: 2013-12-07
URL: CVE-2013-4491
🎯 CVSS 2 Score Details (4.3)
Base Score Metrics:
Want to learn more about the open source vulnerabilities in your products? Click here
The text was updated successfully, but these errors were encountered: